SB2026090412 - NULL pointer dereference in Linux kernel selinux ss
Published: September 4, 2026
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 vulnerability.
1) NULL pointer dereference (CVE-ID: CVE-2026-80756)
CWE-ID: CWE-476 - NULL Pointer Dereference
CVSSv4: 6.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to a null pointer dereference in selinux_policy_cancel() when writing a policy during an initial SELinux policy load that fails while building the selinuxfs tree. A local user can write policy data to /sys/fs/selinux/load to cause a denial of service.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/1059789ae9f99cbbe3a78e361e9c0976beb5958b
- https://git.kernel.org/stable/c/1acc317d67a755a45e32419a15d70e403fa43f0e
- https://git.kernel.org/stable/c/1b4ff94ae7c580c880291519fb0e3e2bd075beef
- https://git.kernel.org/stable/c/219c96de5d9b6b4af7e8576ad897b774cc3ee9a7
- https://git.kernel.org/stable/c/2d29983104f06f5b0babcd5a25a0f0408272cd27
- https://git.kernel.org/stable/c/a42932c6aa33d0aac683cacdf1ec7009b955ba5d
- https://git.kernel.org/stable/c/a4f182f8715cb0819445f0850cd5436828f4bafc
- https://git.kernel.org/stable/c/e5c0235a3c4e9eb047a16cd02323fe4ecf2f570e